/?pid=frustrated-researcher-drops-unpatched-windows-defender-zero-day-poc-in-fiery-public-disclosure-26100

Updated:04:07 PM EDT May 15


this is ggmania.com subsite Frustrated Researcher Drops Unpatched Windows Defender Zero-Day PoC in Fiery Public Disclosure - TechAmok

Frustrated Researcher Drops Unpatched Windows Defender Zero-Day PoC in Fiery Public Disclosure - [security]
02:09 PM EDT - Apr,06 2026 - post a comment

A security researcher known as Nightmare-Eclipse (Chaotic Eclipse) has publicly released BlueHammer, a proof-of-concept exploit that achieves local privilege escalation on Windows by abusing Microsoft Defender's internal RPC signature update interface (IMpService) and ServerMpUpdateEngineSignature calls. The sophisticated chain leverages NTFS symlinks and junctions via undocumented NT APIs, in-memory CAB extraction, Cloud Files API race conditions, and Microsoft's offline registry library to redirect Defender's SYSTEM-level operations.

Accompanied by a PGP-signed critical message to Microsoft, the researcher refused to provide full details, stating "I'm not explaining how this works, y'all geniuses can figure it out," and noted the vulnerability remains unpatched at the time of release. The PoC, hosted on GitHub with credits to contributors including Tom Gallagher, Igor Tsyganskiy, and Jeremy Tinder, contains acknowledged bugs that may affect reliability. Security experts warn this could enable attackers to escalate from regular user to SYSTEM privileges with minimal detection.

Short overview of recent news articles

Meta is laying off about 8,000 workers (May,15 2026 )

Google just patched a massive 79 security holes in Chrome (May,15 2026 )

Hackers Score $523K Cracking Edge, Windows & AI at Pwn2Own Berlin (May,15 2026 )

Lenovo Launches First Ryzen PRO 9000 Workstation in Compact (May,13 2026 )

Viral Mall Prank: How Many Water Gun Shots Until She Notices? (May,13 2026 )

NVIDIA Releases GeForce 596.49 WHQL Game Ready Drivers (May,12 2026 )

BitUnlocker Downgrade Attack Bypasses TPM-Only Windows 11 BitLocker (May,12 2026 )

Adorable Gugu Gaga Sips Before Serving in Viral AI Clip (May,12 2026 )

Apple Rolls Out iOS 26.5 with Pride Wallpaper, Secure RCS (May,11 2026 )

First Root Exploit Achieved on Samsung Galaxy S26 (May,11 2026 )

Google's New Anti-Fraud Tool Locks Out Privacy-Focused Android (May,10 2026 )

Zombie Scavenger - AI movie (May,10 2026 )

Chrome's Secret 4GB AI Download? Easy Fix Found (May,10 2026 )

Google reCAPTCHA Now Locks Out Privacy-Focused Android Users (May,10 2026 )

Apple June Event LEAKED - 8 NEW Products! (May,09 2026 )

Best Buy is out here comparing their prices to... what? Anything? (May,09 2026 )

Shakira becomes the first Latin artist to have FOUR World Cup songs: (May,08 2026 )

Linux 'Dirty Frag' Bug Lets Hackers Gain Root Access (May,08 2026 )

New 'Google Health' App to Replace Google Fit and Fitbit (May,08 2026 )

Apple has held early-stage discussions with Intel and Samsung about (May,07 2026 )

Chrome 148 Drops Massive 127-Vuln Patch - Update Now! (May,07 2026 )

iOS 26.5 Public Beta Delivers Battery Relief for iPhone Users (May,06 2026 )

Apple Reaches $250 Settlement for Failing to Deliver AI Siri as (May,06 2026 )

Anthropic pays $750K/ year per senior engineer. (May,05 2026 )

DDR6 RAM Heads for 2028 Launch with Blazing 17.6 GT/s Speeds (May,05 2026 )

HP Remotely Disables Printers Over Cancelled Ink Subscriptions (May,05 2026 )

Daemon Tools Hacked in Supply Chain Attack (May,05 2026 )

Japanese LEGO Genius Builds Accurate Working Clock (May,03 2026 )

Shakira's 2 million person Copacabana concert tonight: completely (May,03 2026 )

Headline: AT&T Insider Warns: Scammers Hijacking Phone Numbers to (May,03 2026 )

Syncthing: Free Open-Source Tool Ditches Paid Cloud Storage (May,02 2026 )

Your SIM Card Is a Silent Spy: How It Tracks Your Every Move-And Why (May,01 2026 )

RAMageddon Hits Apple: Tim Cook Warns of Soaring Memory Costs in (May,01 2026 )

Windows 11 Update Breaks Third-Party Backups (May,01 2026 )

Chrome's Critical Flaw: RCE Attacks Loom as Google Patches 30 (Apr,29 2026 )

PS5 Hack Unlocks Full Linux, Turns Console into a PC (Apr,29 2026 )

NVIDIA Releases New GeForce 596.36 WHQL Game Ready Drivers (Apr,28 2026 )

Valve Steam Controller Review | Latency Benchmarks, Battery Life, (Apr,28 2026 )

Microsoft Unleashes Autonomous Copilot Agent in Outlook (Apr,28 2026 )

Claude Cowork's 40 Secret Commands: Viral Thread Turns AI Assistant (Apr,27 2026 )

Drivechain Architect Paul Sztorc Unveils August Bitcoin Hard Fork (Apr,27 2026 )

Robinhood Phishing Scam Bypasses All Email Security Checks (Apr,27 2026 )

The Year of Windows Humiliation (Apr,26 2026 )

CIH 'Chernobyl' Virus Turns 27: The BIOS-Killer That Bricked (Apr,26 2026 )

AMD Under Fire for Alleged Reviewer Blacklist as Ryzen 9 9950X3D2 (Apr,25 2026 )

NEVER touch these BIOS settings... Unless you want to ruin your PC! (Apr,24 2026 )

Microsoft Lets Enterprise Admins Uninstall Copilot (Apr,24 2026 )

Claude Desktop Secretly Hooks Into Your Browsers (Apr,23 2026 )

AI Uncovers 271 Zero-Days in Firefox (Apr,22 2026 )

Microsoft Faces $2.8B UK Class-Action Lawsuit Over Cloud Licensing (Apr,22 2026 )

>> News Archive <<

TechAmok - Privacy Policy        loading time:0.01secs